CVE-2013-0270

A flaw was found in OpenStack Keystone. A remote attacker could exploit this vulnerability by sending a large HTTP request, specifically by providing a long tenant name when requesting a token. This could lead to a denial of service, consuming excessive CPU and memory resources on the affected system.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:openstack:keystone:*:*:*:*:*:*:*:*
cpe:2.3:a:openstack:keystone:*:*:*:*:*:*:*:*
cpe:2.3:a:openstack:keystone:2013.1:milestone1:*:*:*:*:*:*
cpe:2.3:a:openstack:keystone:2013.1:milestone2:*:*:*:*:*:*
cpe:2.3:a:openstack:keystone:2013.1:milestone3:*:*:*:*:*:*

History

No history.

Information

Published : 2013-04-12 22:55

Updated : 2026-07-30 14:16


NVD link : CVE-2013-0270

Mitre link : CVE-2013-0270

CVE.ORG link : CVE-2013-0270


JSON object : View

Products Affected

openstack

  • keystone
CWE
CWE-1284

Improper Validation of Specified Quantity in Input

CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer